NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
5786 | CVE-2008-6055 | PreProjects Pre Classified Listings stores pclasp.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2009-02-04 | View | |
5787 | CVE-2008-6056 | Multiple cross-site scripting (XSS) vulnerabilities in World Recipe 2.11 allow remote attackers to inject arbitrary web script or HTML via the (1) n parameter to emailrecipe.aspx, (2) id parameter to recipedetail.aspx, and the (3) catid parameter to validatefieldlength.aspx. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-21 | View | |
5788 | CVE-2008-6057 | Doug Luxem Liberum Help Desk 0.97.3 stores db/helpdesk2000.mdb under the web root with insufficient access control, which allows remote attackers to obtain passwords via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2009-02-04 | View | |
5789 | CVE-2008-6058 | Syslserve 1.058 and earlier, and probably 1.059, allows remote attackers to cause a denial of service (hang) via a crafted UDP Syslog packet. | 2 | 5 | Medium | 2017-01-03 | 2009-02-05 | View | |
5790 | CVE-2008-6059 | xml/XMLHttpRequest.cpp in WebCore in WebKit before r38566 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, which allows remote attackers to obtain sensitive information from cookies via XMLHttpRequest calls, related to the HTTPOnly protection mechanism. | 2 | 5 | Medium | 2017-01-03 | 2009-03-04 | View |
Page 1158 of 17672, showing 5 records out of 88360 total, starting on record 5786, ending on 5790